[Free] 2017 Ensurepass Lead2Pass Microsoft 70-412 Actual Test 291-300

You have a file server named FS1 that runs Windows Server 8. Data Deduplication is enabled on FS1. You need to configure Data Deduplication to run at a normal priority from 20:00 to 06:00 daily. What should you configure?

A.

File and Storage Services in Server Manager.

B.

The Data Deduplication process in Task Manager.

C.

Disk Management in Computer Management.

D.

The properties of drive C.

Correct Answer: A

QUESTION 292

Your network contains two Active Directory forests named contoso.com and fabrikam.com. A two-way forest trust exists between the forests. The contoso.com forest contains an enterprise certification authority (CA) named CA1. You implement cross-forest certificate enrollment between the contoso.com forest and the fabrikam.com forest. On CA1, you create a new certificate template named Template1. You need to ensure that users in the fabrikam.com forest can request certificates that are based on Template1. Which tool should you use?

A.

Sync-ADObject

B.

Pkiview.msc

C.

CertificateServices.ps1

D.

Certutil

E.

PKISync.ps1

Correct Answer: E

QUESTION 293

Your network contains two Active Directory forests named contoso.com and fabrikam.com. The contoso.com forest contains two domains named corp.contoso.com and contoso.com. You establish a two-way forest trust between contoso.com and fabrikam.com. Users from the corp.contoso.com domain report that they cannot log on to client computers in the fabrikam.com domain by using their corp.contoso.com user account. When they try to log on, they receive following error message:

“The computer you are signing into is protected by an authentication firewall. The specified account is not allowed to authenticate to the computer.”

Corp.contoso.com users can log on successfully to client computers in the contoso.com domain by using their corp.contoso.com user account credentials. You need to allow users from the corp.contoso.com domain to log on to the client computers in the fabrikam.com forest. What should you do?

A.

Configure Windows Firewall with Advanced
Security.

B.

Enable SID history.

C.

Configure forest-wide authentication.

D.

Instruct the users to log on by using a user principal name (UPN).

Correct Answer: C

QUESTION 294

Your network contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Both servers have the Hyper-V server role installed. The servers have the hardware configurations shown in the following table.

Server1 hosts five virtual machines that run Windows Server 2012 R2. You need to move the virtual machines from Server1 to Server2. The solution must minimize downtime. What should you do for each virtual machine?

A.

Export the virtual machines from Server1 and import the virtual machines to Server2.

B.

Perform a live migration.

C.

Perform a quick migration.

D.

Perform a storage migration.

Correct Answer: A

QUESTION 295

You have a server named Server 1 that runs Windows Server 2012 R2. Server1 has five network adapters. Three of the network adapters are connected to a network named LAN1. The two other network adapters are connected to a network named LAN2. You create a network adapter team named Team1 from two of the adapters connected to LAN1. You create a network adapter team named Team2 from the two adapters connected to LAN2. A company policy states that all server IP addresses must be assigned by using a reserved address in DHCP. You need to identify how many DHCP reservations you must create for Server1. How many reservations should you identify?

A.

2

B.

3

C.

5

D.

7

Correct Answer: B

QUESTION 296

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the IP Address Management (IPAM) Server feature installed. IPAM is configured currently for Group Policy-based provisioning. You need to change the IPAM provisioning method on Server1. What should you do?

A.

Run the ipamgc.exe command.

B.

Run the Set-IPAMConfiguration cmdlet.

C.

Reinstall the IP Address Management (IPAM) Server feature.

D.

Delete IPAM Group Policy objects (GPOs) from the domain.

Correct Answer: C

QUESTION 297

Your network contains an Active Directory domain named contoso.com. Domain controllers run either Windows Server 2008, Windows Server 2008 R2, or Windows Server 2012 R2. You have a Password Settings object (PSOs) named PSO1. You need to view the settings of PSO1. Which tool should you use?

A.

Get-ADDomainControllerPasswordReplicationPolicy

B.

Get-ADDefaultDomainPasswordPolicy

C.

Server Manager

D.

Get-ADFineGrainedPasswordPolicy

Correct Answer: D

QUESTION 298

Your network contains two Active Directory forests named contoso.com and adatum.com. Both forests contain multiple domains. All domain controllers run Windows Server 2012 R2. Contoso.com has a one-way forest trust to adatum.com. A domain named paris.eu.contoso.com hosts several legacy Applications that use NTLM authentication. Users in a domain named london.europe.adatum.com report that i
t takes a long time to be authenticated when they attempt to access the legacy Applications hosted in paris.eu.contoso.com. You need to reduce how long it takes for the london.europe.adatum.com users to be authenticated in paris.eu.contoso.com. What should you do?

A.

Create a shortcut trust.

B.

Create an external trust between the forest root domains.

C.

Disable SID filtering on the existing trust.

D.

Create an external trust.

Correct Answer: A

QUESTION 299

Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1 and a domain controller named DC1. All servers run Windows Server 2012 R2. A Group Policy object (GPO) named GPO1 is linked to the domain. Server1 contains a folder named Folder1. Folder1 is shared as Share1. You need to ensure that authenticated users can request assistance when they are denied access to the resources on Server1. Which two actions should you perform? (Each correct answer pre
sents part of the solution. Choose two.)

A.

Assign the Read Attributes NTFS permission on Folder1 to the Authenticated Users group.

Enable the Enable access-denied assistance on client for all file types policy setting for GPO1.

E.

Install the File Server Resource Manager role service on DC1.

Correct Answer: BD

QUESTION 300

Your network contains an Active Directory domain named adatum.com. All domain controllers run Windows Server 2008 R2. The domain contains a file server named Server6 that runs Windows Server 2012 R2. Server6 contains a folder named Folder1. Folder1 is shared as Share1. The NTFS permissions on Folder1 are shown in the exhibit.

The domain contains two global groups named Group1 and Group2. You need to ensure that only users who are members of both Group1 and Group2 are denied access to Folder1. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)